Ga Soft maintains a narrowly scoped portfolio of web-facing applications including Rapid Classified and GAS Forum Light, which present attack surfaces centered on user input handling and application logic. The vendor's disclosures reflect the characteristic vulnerability patterns of web-application development, documented across its focused product line. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ga Soft over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-6930HIGH SQL injection vulnerability in viewad.asp in Rapid Classified 3.1 allows remote attackers to execute arbitrary SQL commands via the id parameter. | Jan 13, 2007 | 7.5 | 28 | NO | YES |
CVE-2006-0669HIGH Multiple SQL injection vulnerabilities in archive.asp in GA's Forum Light allow remote attackers to execute arbitrary SQL commands via the (1) Forum and (2) pages parameter. NOTE: | Feb 13, 2006 | 7.5 | 28 | NO | YES |
CVE-2006-6929MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in Rapid Classified 3.1 allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter to (a) reply.asp | Jan 13, 2007 | 6.8 | 27 | NO | YES |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ga Soft.
Media articles that mention a CVE ID that affects a product developed by Ga Soft — matched by CVE ID, not by vendor name.